Soc Analyst Resume
4.00/5 (Submit Your Rating)
TECHNICAL SKILLS
- Security
- Remediation
- Sop
- Corrective Action
- Customer Service Oriented
- Bi - Lingual
- Microsoft Outlook
- Intrusion Detection
- Computer Security
- Dlp
- Regulatory Compliance
- Access Control
- Cyber Security
- Intellectual Property
- IDS
- Information Assurance
- Cisco
- Nist
- TCP/IP
- Microsoft Office
- Graphical User Interface
- SharePoint
- Assurance Analyst
- Data Sources
- Splunk
- Siem
- Symantec
- Federal Information Security Management Act
- TCP
- Comptia
- Solaris
- Microsoft SharePoint
- Linux
- Soc
- Firewalls
- System Security
- Excellent Written And Verbal Communication Skills
- Goal-Oriented
- Microsoft Powerpoint
- Incident Response
- Operations
- MICROSOFT WORD
- Gui
- Cissp
- Fisma
- Intrusion
- Ips
- Nessus
- Trading
- Esm
- Ir
- Bsd
- Visio
- Information Security
- Linux/Unix
- MS SharePoint
- Vulnerability Assessment
- Customer Service
- Outlook
- PowerPoint
- Word
- MS Visio
- Risk Management
- Unspecified
- Team Player
- Written and Verbal
- Bilingual
PROFESSIONAL EXPERIENCE
Confidential
SOC Analyst
Responsibilities:
- Monitor intrusion detection and prevention systems and other security event data sources on basis.
- Prioritize and differentiate between potential intrusion attempts and false alarms.
- Proactively search through log, network, and system data to find and identify undetected threats.
- Using McAfee ESM and McAfee ePO, QRadar, FortSIEM, HIPS, ESM, Confidential, Identify, verify and ingest indicators of compromise and attack (IOC's, IOA's)
- Report common and repeat problems, observed via trend analysis, to SOC management and propose process and technical improvements to improve teh effectiveness and efficiency of alert notification and incident handling.
- In - depth understanding of current cybersecurity threats, attacks, and countermeasures for adversarial activities such as phishing, command, and control (C2) activity, etc.
- In-depth hands-on experience analyzing and responding to security events and incidents with most of teh following technologies and/or techniques leading security information and event management (SIEM) technologies, intrusion detection/prevention systems (IDS/IPS), network and host-based firewalls, network access control (NAC), data leak protection (DLP).
- Understanding of SOAR (Security Orchestration, Automation and Response).
- Comodo Endpoint Security Manager and Cisco AMP for Endpoints.
- Strong communication, interpersonal, organizational, oral, and customer service skills.
- Strong knowledge of TCP/IP protocols, services.